首页> 外文OA文献 >Taxonomy of man-in-the-middle attacks on HTTPS
【2h】

Taxonomy of man-in-the-middle attacks on HTTPS

机译:HTTPS中间人攻击的分类法

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

With the increase in Man-in-the-Middle (MITM) attacks capable of breaking Hypertext Transfer Protocol Secure (HTTPS) over the past five years, researchers tasked with the improvement of HTTPS must understand each attacks characteristics. However with the large amount of attacks it is difficult to discern attack differences, with out any existing classification system capable of classifying these attacks. In this paper we provide a framework for classifying and mitigating MITM attacks on HTTPS communications. The identification and classification of these attacks can be used to provide useful insight into what can be done to improve the security of HTTPS communications. The classification framework was used to create a taxonomy of MITM attacks providing a visual representation of attack relationships, and was designed to flexibly allow other areas of attack analysis to be added. The classification framework was tested against a testbed of MITM attacks, then further validated and evaluated at the INTERPOL Global Complex for Innovation (IGCI) with a forensic taxonomy extension, and forensic analysis tool.
机译:在过去的五年中,随着中间人(MITM)攻击能够突破超文本传输​​协议安全(HTTPS)的攻击,研究人员必须改进HTTPS,才能了解每种攻击的特征。但是,由于存在大量攻击,因此很难在没有任何现有的能够对这些攻击进行分类的分类系统中分辨出攻击差异。在本文中,我们提供了一个用于分类和缓解HTTPS通信上的MITM攻击的框架。这些攻击的标识和分类可用于提供有用的见解,以了解如何执行以提高HTTPS通信的安全性。分类框架用于创建MITM攻击的分类法,提供攻击关系的可视化表示,并旨在灵活地添加攻击分析的其他区域。该分类框架针对MITM攻击的测试平台进行了测试,然后在国际刑警组织全球创新综合体(IGCI)上通过法医分类法扩展和法医分析工具进行了进一步验证和评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号